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PILLSBURY WINTHROP LLP 
2475 HANOVER STREET 
PALO ALTO, CA 94304 



PCT 



NOTIFICATION OF TRANSMITTAL OF 
THE INTERNATIONAL SEARCH REPORT AND 
THE WRITTEN OPINION OF THE INTERNATIONAL 
SEARCHING AUTHORITY. OR THE DECLARATION 

(PCT Rule 44. I> 



Applicant's or agent's file reference 
06781 1-0312367 



Internationa] application No. 
PCT/US04/32100 



Dale of mailing 
( day /'mo n ih / v ea r ) 



08 FEB 2005 



FOR FURTHER ACTION See paragraphs I and 4 below 



International filing date 

(clay/month/yean 29 September 2004 < 29.09.2004) 



Applicanl 

SCANALERT, INC. 



1 • S ,llc applicant is herehy notified thai the international search report and the written opinion of the International Searching Authority 
have been established and are transmitted herewith. 

Filing of amendments and statement imder Article 19: 

The applicant is entitled, if he so wishes, to amend the claims of the international application (sec Rule 46): 

When? The time limit for filing such amendments is normally two months from the dale of transmittal of the international 
search report. 

Where? Directly to the International Bureau ot'WIPO. 34 chemin des Colombelles 
121 1 Geneva 20. Switzerland. Facsimile No.: +41 22 740 14 35 

For more detailed instructions, see the notes on the accompanying sheet. 

2. \^\ The applicanl is hereby notified that no international search report will be established and that the declaration under 

Article 17(2)(a) to that effect and the written opinion of the International Searching Authority are transmitted herewith. 

3. I 1 With regard to the protest against payment of (an) additional fee(s) under Rule 40.2. the applicant is notified that: 

! j the protest together with the decision thereon has been transmitted to the International Bureau together with ihc applicant's 

request to forward the texts of both the protest and the decision thereon to the designated Offices. 
| | no decision has been made yet on the protest: the applicant will be notified as soon as ;i decision is made. 

4. Reminders 

Shortly after the expiration of 18 months I nun the priority date, the international application will be published by the Internationa! 
Bureau. If the applicant wishes to avoid or postpone publication, a notice of withdrawal of the international application, or ol the 
priority claim, must reach the International Bureau as provided in Rules 90/w.v. I and 9()/>/.v.3. respectively, before the completion of the 
technical preparations for international publication. 

The applicanl may submit comments on an informal basis on the written opinion of the International Searching Authority to the 
International Bureau. Hie International Bureau will send a copy of such comments to all designated Offices unless an international 
preliminary examination report has been or is to he established. These comments would also be made available to the public but not 
before the expiration of 30 months from the priority dale. 

Within 19 months from the priority dale, but only in respect of some designated Offices, a demand for international preliminary 
examination must be filed if the applicant wishes to postpone the entry into the national phase until 3(1 months from the priority date 
(in some Offices even later); otherwise, the applicant must, within 20 mouths from the priority date, perform the prescribed acts for 
entry into the national phase before those designated Offices. 

In respect of other designated Offices, the lime limit of 30 mouths (or later) will apply even if no demand is filed within 19 months. 
See the Annex to Form PCT/IB/30I and. for details about the applicable lime limits. Office by Office, see the PCT Applicant's Guide. 
Volume II. National Chapters and the WIPO Internet site. 
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(PCT Article IS and Rules 43 and 44) 
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FOR FURTHER 
ACTION 



see Form PCT/ ISA/ 22(1 
as well as. where applicable, item 5 below. 



International application No. 
PCT/US04/32100 



International filing date [day /month /year) 
29 September 2004 (29.09.20(H) 



(Earliest) Priority Date [day /numth /year) 
29 September 2003 (29.09.2003 1 



Applicant 

SCANALERT, INC. 



This international search report has been prepared by this International Searching Authority and is transmitted to the 
applicant according to Article 18. A copy is being transmitted to the International Bureau 

This international search report consists of a total of sheets. 

It is also accompanied by a copy of each prior art document cited in this report. 



1 . Basis of the Report 

a. With regard to the language, the international search was carried out on the basis of the international application in the 
language in which it was tiled, unless otherwise indicated under this item. 

| | The international search was carried out on the basis of a translation of the international application 

furnished to this Authority (Rule 23. Kb»). 

b. QJ With regard to any nucleotide and/or amino acid sequence disclosed in the international application, see Box No. 

I. 

2. [^J Certain claims were found unsearchable (See Box No. II) 

3. Unity of invention is lacking (See Box No. Ill) 

4. With regard to the title, 

1X3 ihe text is approved as submitted by the applicant. 

| '] die text has been established by this Authority to read as follows: 



With regard to the abstract. 

j | die text is approved as submitted by the applicant. 

|X1 the text has been established, according to Rule 38.2(b), by this Authority as it appears in Box No. IV. The 
applicant may, within one month from the date of mailing of this international search report, submit comments 

to diis Authority. 

With regard to the drawings. 

a the figure of the drawings to be published with the abstract is Figure No. 3 
[ J as suggested by the applicant. 

\_ ] as selected by diis Authority, because die applicant failed to suggest a figure. 

[X] as selected by this Authority, because this figure belter characterizes the invention. 

none of the figures i* in be p ublished with ihe abstract . _____ _ — 
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NOTES TO FORM PCTrtSA/220 (continued) 

The letter must indicate the differences between the claims as filed and the claims as amended- It must, in 
particular, indicate, in connection with each claim appearing in the international application (it being understood 
that identical indications concerning several claims may be grouped), whether 

(i) the claim is unchanged; 

(ii) the claim is cancelled; 

(iii) the claim is new; 

(iv) the claim replaces one or more claims as filed; 

(v) the claim is the result of the division of a claim as filed. 

The following examples illustrate the manner in which amendments must be explained in the accompanying 
letter: 

1 [Where originally there were 48 claims and after amendment of some claims there are 51]: 
"Claims 1 to 29, 31. 32. 34, 35, 37 to 48 replaced by amended claims bearing the same numbers; 
claims 30, 33 and 36 unchanged; new claims 49 to 51 added." 

2. [Where originally there were 15 claims and after amendment of all claims there are 1 1]: 
"Claims 1 to 15 replaced by amended claims 1 to 1 1 " 

3. [Where originally there were 14 claims and the amendments consist in cancelling some claims and in 
adding new claims]; 

"Claims 1 to 6 and 14 unchanged; claims 7 to 13 cancelled; new claims 15, 16 and 17 added, or 
"Claims 7 to 13 cancelled; new claims 15, 16 and 17 added; all other claims unchanged." 

4. [Where various kinds of amendments are made]; „ 

"Claims 1-10 unchanged; claims 1 1 to 13, 18 and 19 cancelled; claims 14, 15 and 16 replaced by amended 
claim 14; claim 17 subdivided into amended claims 15, 16 and 17; new claims 20 and 21 added" 

"Statement under Article 19(1)" (Rule 46.4) 

The amendments may be accompanied by a statement explaining the amendments and indicating any impact 
that such amendments might have on the description and the drawings (which cannot be amended under 
Article 19(1)). 

The statement will be published with the international application and the amended claims. 
It must be in the language in which the international application is to be published. 

It must be brief, not exceeding 500 words if in English or if translated into English. 

It should not be confused with and does not replace the letter indicating the differences between the claims 
as filed and as amended. It must be filed on a separate sheet and must be identified as such by a heading, 
preferably by using the words "Statement under Article 19(1)." 

It may not contain any disparaging comments on the international search report or the relevance of citations 
contained in that report. Reference to citations, relevant to a given claim, contained in the international search 
report may be made only in connection with an amendment of that claim. 

Consequence if a demand for international preliminary examination has already been filed 

If at the time of filing any amendments and any accompanying statement, under Article 19, a demand for 
international preliminary examination has already been submitted, the applicant must preferably, at the time of 
filing the amendments (and any statement) with the International Bureau, also file with the International 
Preliminary Examining Authority a copy of such amendments (and of any statement) and, where required, a 
translation of such amendments for the procedure before that Authority (see Rules 55.3(a) and 62.2, first 
sentence). For further information, see the Notes to the demand form (PCT/IPEA/401 ). 



Consequence with regard to translation of the international application for entry into the national phase 

The applicant's attention ss drawn to the fact that, upon entry into the national phase, a translation of the 
claims as amended under Article 19 may have to be furnished to the designated/elected Offices, instead of, or 
in addition to, the translanon of the claims as filed. 

For further details on the requirements of each designated/elected Office, see the PCT Applicant 's Guide. 
Volume II . 
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INTERNATIONAL SEARCH REPORT 



International application No. 
PCT/US04/32IOO 



Box IV TEXT OF THE ABSTRACT (Continuation of Item 5 of the first sheet) 



I A unique combination of several functions achieves a system 
by which consumers can validate the actual security status 
of a website before they decide to trust it, and therefore 
transact with it. In one example implementation, a 
security system includes a scanning engine (PIG 3, 302) ^ 
that Periodically and thoroughly scans the network and 
connected components of an on-line service such as a 
website. The results are stored and perhaps reported back 
to the service via alerts (FIG 3, 306)^and the like. The 
website includes a "bug" which visitors can click on. By 
clicking, the visitors are also displayed web pages showing 
the security status of the website. Based on their review 
of such web pages, visitors can then decide whether to 
trust the website for further transactions . 
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INTERNATIONAL SEARCH REPORT 



International application No 
PCT/US04/32100 



A. CLASSIFICATION OF SUBJECT MATTER 

IPC(7) : G06F 1 1 /30 

USCL 713/201 
According to International Patent Classification (IPC) or to both national classification and IPC 



B. FIELDS SEARCHED 



Minimum documentation searched i classification system followed by classification symbols) 
U.S. : 713/201 



Documentation searched other than minimum documentation to the extent that such documents are included in the fields searched 



Electronic data base consulted during the international search (name of data base and. where practicable, search terms used) 



DOCUMENTS CONSIDERED TO BE RELEVANT 



Category * 



Citation of document, with indication, where appropriate, of the relevant passages 



Relevant to claim No 



X 
Y 



US 2002/0038430 A 1 (EDWARDS etal) 28 March 2002, Page 3. Paragraph 0038. 



US 2002/00 1 0855 A 1 (RESHEF et al. ) 24 January 2002 (24.01.2002.), Page 4, Paragraph 
0052. 



1, 4-6. 10-16. 19.20 



2, 3. 7-9. 17. 18. 21- 
38 

2. 3, 7-9, 17. 18, 21- 
38 



□ 



Further documents are listed in the continuation of Box C. 



□ 



See patent family annex. 



* Special categories of cited documents: 

~A" document defining the general suite of the an which is not considered to he 
of particular relevance 

~E~ earlier application or patent published on or after the international filing date 

"L" document which may throw doubts on priority c)aim(s) or which is cited to 
establish the publication date of another citation or other special reason (as 
specified) 

"C document referring to an oral disclosure, use. exhibition or other means 

ta P" document published prior to the international filing dale but later than the 
priority date claimed 



later document published after the international filing date or priority 
date ;md not in conflict with the application hut cited to understand -lie 
principle or theory underlying the invention 

document of particular relevance: the claimed invention cannot he 
considered novel or cumot he considered to involve .in inventive step 
when the document is Liken .done 

document of particular relevance: the claimed invention cannot be 
considered to involve an inventive step when the document is 
combined with one or more tuner such documents, such combination 
heing obvious w> a person skilled in the , ( n 

document member of the same patent family 



Date of the actual completion of the international search 
09 January 2005 (09.01 .2005) 



Date of mail in i! of the international search report 

08 FEB m 




Name and mailing address of the ISA/US 
Mail Stop PCX. Attn: ISA/US 
Commissioner for Patents 
P.O. Box 1450 

Alexandria. Virginia 22313-145(1 
Facsimile No. (703; 305-3230 



Authorized officer 



Beemnei W Da da 



Telephone No. (571.) 272-3847 
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_ Latent cooperation treaty ' 

Frofn the 

INTERNATIONAL SEARCHING AUTHORITY 



To: 

MARK J. DANIELSON 
PILLSBURY WINTHROP LLP 
2475 HANOVER STREET 
PALO ALTO, CA 94304 


PCT 

WRITTEN OPINION OF THE 
INTERNATIONAL SEARCHING AUTHORITY 

(PCT Rule 43/w.v.l) 


Dale (if mailing AO P-f^r* ' 
[dax/mtmlh/vean ||t) FEB 7Q0S 


Applicant's or agent's file reference 
067811-0312367 


FOR FURTHER ACTION 

See paragraph 2 below 


International application No. International filing date (clay /month/year) Priority dale iday/numth/yean 
PCT/US04/32100 29 September 2004 (29. 09. 2004) 29 September 2003 (29.09.2003) 


International Patent Classification (IPC 1 or botli national classification and IPC 
IPC(7): G06F 1 1/30 and US CL: 713/201 


Applicant 

SCANALERT, INC. 



I. This opinion contains indications relating to the following items: 





Box No. 


I 


Basis of the opinion 


□ 


Box No. 


II 


Priority 


□ 


Box No. 


111 


Non-establishment of opinion with regard to novelty, inventive step and industrial applicability 


□ 


Box No. 


IV 


Lack of unity of invention 




Box No. 


V 


Reasoned statement under Rule 43W.v. lU0(i) with regard to novelty, inventive siep or industrial 
applicability; citations and explanations supporting such statement 


□ 


Box No. 


VI 


Certain documents cited 


□ 


Box No. 


Vll 


Certain defects in the international application 


□ 


Box No. 


VIII 


Certain observations on the international application 



2. FURTHER ACTION 

If a demand for international preliminary examination is made, this opinion will be considered to be a written opinion of the 
International Preliminary Examining Authority ('IPEA'* except thai this does not apply where the applicant chooses an 
Authority other than this" one to be the IPEA and the chosen IPEA has notified the International Bureau under Rule 66. \bis(h) 
that written opinions of this International Searching Authority will not be so considered. 

If this opinion is, as provided above, considered to he a written opinion of the IPEA, the applicant is invited lo submit to the 
IPEA a written reply together, where appropriate, with amendments, before the expiration of 3 months from the dale of 
mailing of Form PCT/ISA/220 or before the expiration of 22 months from the priority dale, whichever expires later. 
For further options, see Form PCT/ISA/220. 

3. For further details, see notes to Form PCT/ISA/220. 



Name and mailing address of the ISA/ US 
Mail Slop PCT. Attn: ISA/ US 
Commissioner for Patents 
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Facsimile No. (703) 305-3230 



Authorized ot^r^_ 
Beemnei W Dada 

Telephone No. (571)272-3847 
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WRITTEN OPINION OF THE 
INTERNATIONAL SEARCHING AUTHORITY 


Inter national application No. 
PCT/US04/32I00 


Box No. I Basis of this opinion 



1. Willi regard to the language, this opinion ha** been established on the basis of the international application in the language in which 
it was filed, unless otherwise indicated under this item. 

| | This opinion has been established on the basis of a translation from the original language into the following language 



which is the language of a translation furnished for the purposes of international search (under Rules 12.3 and 23. Kb)). 

2. Willi regard to any nucleotide and/or amino acid sequence disclosed in the international application and necessary to the 
claimed invention, this opinion has been established on the basis of: 

a. type of material 

i j a sequence listing 

| | tablets) related to the sequence listing 

b. formal of material 

j | in written formal 

f | in computer readable form 

c. lime of tiling/ furnishing 

| | contained in international application as Hied. 

| | filed together with the international application in computer readable form. 
| | furnished subsequently to this Authority for the purposes of search. 



3. Q In addition, in the case lhat more than one version or copy of « sequence listing and/or table relating thereto has been 

filed or furnished, the required statements thai the information in die subsequent or additional copies is identical to that in 
the application as filed or does not go beyond the application as Hied, as appropriate, were furnished. 

4. Additional comments: 
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Box No. V Reasoned statement under Rule 43 bis.l(a)(i) with regard to novelty, inventive step or industrial 
applicability; citations and explanations supporting such statement 



1 . Statement 



Novelty (N) 



Claims 2, 3, 7-9, 17, 18, 21-38 



Claims I. 4-6. 10-16. 19. 20 



YES 
NO 



Inventive step (IS) 



Claims NONE 
Claims 1-38 



YES 
NO 



Industrial applicability (I A) 



Claims 1-38 
Claims NONE 



YES 
NO 



2. Citations and explanations: 
Please See Continuation Sheet 
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International application No. 
PCT/US04/32I00 



V. 2. Citations and Explanations: 

Claims 1, 4-6. 10-16, 19, and 20 lack novelty under PCT Article 33(2) as being anticipated bv Edwards et al US 
2002/0038430 Al. 

As per claims I and 14 Edwards et al discloses an apparatus tor providing verification of a 
security status of an on-line service, comprising: a database that stores a profile of devices and services 
comprising the on-line service and a corresponding indication of their vulnerability Ipage 1 , 001 2, page 2, 
0015 and page 3, 0038]; and a verification engine that provides verification to visitors of the on-line service 
via a network by displaying an indication of the security status of the on-line service to the visitor in 
accordance with the stored profile [page 3, 0038-0039). 

As per claims 4-6, 10-13 and 19-20, Edwards et al further discloses the apparatus is remote 
from the on-line service (website) on die network (Internet) [page 1 , 0012], and displaying an indication in 
response to visitor clicking a hug displayed by 
on-line service [page 4, 0040]. 

As per claims 15 and 16, Edwards et al further discloses the apparatus wherein graphical 
indication is a security meter [page 2, 0017]. 



Claims 2, 3, 7-9, 17, 18, 21-38 lack an inventive step under PCT Article 33(3) as being 
obvious over Edwards et al US 2002/0038430 A1 in view of Reshef et al US 2002/00 1 0855 A1 . 

As per claims 2, 3, 7-9, 17, 18, 21-38, Edwards et al discloses an apparatus for providing 
verification of a security status of an on-line service, comprising: a database that stores a profile of devices 
and services comprising the on-line service and a corresponding indication of their vulnerability [page I. 
0012, page 2, 0015 and page 3, 0038]; and a verification engine that provides verification to visitors of the 
on-line service via a network by displaying an indication of the security status of the on-line service to the 
visitor in accordance with the stored profile [page 3, 0038-0039]. Edwards et al further discloses the 
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Supplemental Box 

In case the space in any of the preceding hoxes is not sufficient. 

apparatus is remote from the on-line service (website) on the network (Internet) Ipage 1 . 00 1 2 1 , and 
displaying an indication in response to visitor clicking a bug displayed by on-line service Ipage 4, 0040]. 
Edwards et al further discloses the apparatus wherein graphical indication is a security meter Ipage 2, 0017). 
Edwards et al is silent on a scanning engine that detects the devices and services and performs vulnerability 
fingerprints. Reshef et al discloses a system for determining web application vulnerabilities [see abstract! 
including a scanning engine that detects devices and services and performs a comparison between 
vulnerability fingerprints to obtain vulnerability indications Ipage 3. 0032 and page 4. 0052). 
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